CVE-2009-4776
https://notcve.org/view.php?id=CVE-2009-4776
Buffer overflow in Hitachi Cosminexus V4 through V8, Processing Kit for XML, and Developer's Kit for Java, as used in products such as uCosminexus, Electronic Form Workflow, Groupmax, and IBM XL C/C++ Enterprise Edition 7 and 8, allows remote attackers to have an unknown impact via vectors related to the use of GIF image processing APIs by a Java application, and a different issue from CVE-2007-3794. Desbordamiento de búfer en Hitachi Cosminexus V4 a la V8, Processing Kit para XML, y Developer's Kit para Java, usado en productos como uCosminexus, Electronic Form Workflow, Groupmax, e IBM XL C/C++ Enterprise Edition 7 y 8, permite a atacantes remotos tener un impacto desconocido a través de vectores relacionados con el uso del procesamiento de imágenes GIF mediante APIs para aplicaciones Java. Cuestión distinta del CVE-2007-3794. • http://osvdb.org/57834 http://secunia.com/advisories/36622 http://www.hitachi.co.jp/Prod/comp/soft1/global/security/info/vuls/HS09-014/index.html http://www.securityfocus.com/bid/36309 http://www.vupen.com/english/advisories/2009/2574 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2007-4204
https://notcve.org/view.php?id=CVE-2007-4204
Hitachi Groupmax Collaboration - Schedule, as used in Groupmax Collaboration Portal 07-32 through 07-32-/B, uCosminexus Collaboration Portal 06-32 through 06-32-/B, and Groupmax Collaboration Web Client - Mail/Schedule 07-32 through 07-32-/A, can assign schedule data to the wrong user under unspecified conditions, which might allow remote authenticated users to obtain sensitive information. Hitachi Groupmax Collaboration - Schedule, usado en Groupmax Collaboration Portal 07-32 hasta 07-32-/B, uCosminexus Collaboration Portal 06-32 hasta 06-32-/B, y Groupmax Collaboration Web Client - Mail/Schedule 07-32 hasta 07-32-/A, puede asignar datos de programación (schedule) al usuario incorrecto bajo condiciones no especificadas, lo cual podría permitir a usuarios autenticados remotamente obtener información sensible. • http://osvdb.org/46987 http://www.hitachi-support.com/security_e/vuls_e/HS07-022_e/index-e.html http://www.vupen.com/english/advisories/2007/2723 https://exchange.xforce.ibmcloud.com/vulnerabilities/35704 •
CVE-2006-3574
https://notcve.org/view.php?id=CVE-2006-3574
Multiple cross-site scripting (XSS) vulnerabilities in Hitachi Groupmax Collaboration Portal and Web Client before 07-20-/D, and uCosminexus Collaboration Portal and Forum/File Sharing before 06-20-/C, allow remote attackers to "execute malicious scripts" via unknown vectors (aka HS06-014-01). Múltiples vulnerabilidades de secuencia de comandos en sitios cruzados (XSS) en Hitachi Groupmax Collaboration Portal y Web Client anterior 07-20-/D, y uCosminexus Collaboration Portal y Forum/File Sharing anterior a 06-20-/C, permite a atacantes remotos "ejecutar secuencias de comandos maliciosas" a través de vectores desconocidos (también conocido como HS06-014-01). • http://secunia.com/advisories/20926 http://www.hitachi-support.com/security_e/vuls_e/HS06-014_e/01-e.html http://www.hitachi-support.com/security_e/vuls_e/HS06-014_e/index-e.html http://www.securityfocus.com/bid/18830 http://www.vupen.com/english/advisories/2006/2665 https://exchange.xforce.ibmcloud.com/vulnerabilities/27605 •
CVE-2005-4322
https://notcve.org/view.php?id=CVE-2005-4322
Multiple cross-site scripting (XSS) vulnerabilities in Hitachi Cosminexus Collaboration Portal 06-00 through 06-10-/B, Groupmax Collaboration Portal 07-00 through 07-10-/B, and Groupmax Collaboration Web Client 07-00 through 07-10-/A allow remote attackers to inject arbitrary web script or HTML via the (1) Schedule and (2) Calendar components. • http://secunia.com/advisories/17634 http://securitytracker.com/alerts/2005/Nov/1015241.html http://securitytracker.com/alerts/2005/Nov/1015242.html http://www.hitachi-support.com/security_e/vuls_e/HS05-023_e/01-e.html http://www.osvdb.org/20969 http://www.osvdb.org/22126 http://www.securityfocus.com/bid/15498 https://exchange.xforce.ibmcloud.com/vulnerabilities/23197 •
CVE-2005-4323
https://notcve.org/view.php?id=CVE-2005-4323
Unspecified vulnerability in Hitachi Cosminexus Collaboration Portal 06-00 through 06-10-/B, Groupmax Collaboration Portal 07-00 through 07-10-/B, and Groupmax Collaboration Web Client 07-00 through 07-10-/A allow remote attackers to cause a denial of service of unspecified impact via repeated invalid requests to the Schedule component. • http://secunia.com/advisories/17634 http://securitytracker.com/alerts/2005/Nov/1015241.html http://securitytracker.com/alerts/2005/Nov/1015242.html http://www.hitachi-support.com/security_e/vuls_e/HS05-023_e/01-e.html http://www.securityfocus.com/bid/15500 https://exchange.xforce.ibmcloud.com/vulnerabilities/23193 •